Ecosyste.ms: OpenCollective

An open API service for software projects hosted on Open Collective.

github.com/ory/kratos

The most scalable and customizable identity server on the market. Replace your Homegrown, Auth0, Okta, Firebase with better UX and DX. Has all the tablestakes: Passkeys, Social Sign In, Multi-Factor Auth, SMS, SAML, TOTP, and more. Written in Go, cloud native, headless, API-first. Available as a service on Ory Network and for self-hosters.
https://github.com/ory/kratos

fix: use ID label on login with multiple identifiers (#3657)

be907dbbd841025fd854344b77d3368b2ff8089f authored about 1 year ago by Patrik <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

52c7d3b5dd4c014bdbb06c3104967675d20e87ae authored about 1 year ago by ory-bot <[email protected]>
fix: ignore CSRF middleware on Apple OIDC callback

309c50694c11162cad070337f9b1d4e0fcdf444b authored about 1 year ago by Sidartha Rakuram <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

bbf874fd7f7c6e5d51b11f39d989a17039a6e955 authored about 1 year ago by ory-bot <[email protected]>
feat: extract identifier label for login from default identity schema (#3645)

180828eb507ab239a9c6589f747a6816b6e50074 authored about 1 year ago by Patrik <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

7c0e02efdc115b5ac9dcf7e6517a27e903c02643 authored about 1 year ago by ory-bot <[email protected]>
fix: reject obviously invalid email addresses from courier

8cb9e4cae9dffd4c25d52920186f9c5fbe2bd0fe authored about 1 year ago by Arne Luenser <[email protected]>
fix: panic in recovery (#3639)

c25ddffd2270a8d0861e2fc78cd0ba26e63af4eb authored about 1 year ago by Henning Perl <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

3735f1cd7b03e128679d91d0ed4e4e6d28309d3c authored about 1 year ago by ory-bot <[email protected]>
fix: don't list org SSOs in settings (#3637)

6c7068cf41df51cde5fe9fc79cca84ec6124d38a authored about 1 year ago by Henning Perl <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

1a098b728f13bbb43711a5a3ebcfd6496e1632ea authored about 1 year ago by ory-bot <[email protected]>
fix: incorrect SMTP error handling (#3636)

ee138ec4e1ba55ef077858653220db9e6b0c7254 authored about 1 year ago by Arne Luenser <[email protected]>
fix: improved SSRF protection (#3629)

This also improves tracing in the OIDC strategy.

6d08576bbc2c06014192f05e0129b95eb6c9fd80 authored about 1 year ago by Arne Luenser <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

f6fde34c172848c106634c7b91418a147c988599 authored about 1 year ago by ory-bot <[email protected]>
feat(changelog): add support for native recovery (#3624)

Adds the ability to complete the recovery flow properly on API flows. This PR also streamlines t...

492808cae0e804793aef9a02a902fce988f9fc6d authored about 1 year ago by Jonas Hungershausen <[email protected]>
feat: add support for recovery on native flows (#3273)

---------

Co-authored-by: Henning Perl <[email protected]>
Co-authored-by: Alano Terblan...

e363889732c0a1cb801fd12b2e0e8546006e9714 authored about 1 year ago by Jonas Hungershausen <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

e81e892b00c1a988adc3831518125bb74046f4fb authored about 1 year ago by ory-bot <[email protected]>
fix: additional_id_token_audiences key in config schema (#3622)

9396bb0b586d1d1e74a85c0ae3bcf9de81214f1b authored about 1 year ago by Jonas Hungershausen <[email protected]>
autogen(openapi): regenerate swagger spec and internal client

[skip ci]

ade1a5a544307a873ecba7046bb9f97f2f3311a1 authored about 1 year ago by ory-bot <[email protected]>
feat: batch list identities (#3598)

This change allows to filter `GET /admin/identities` by ID with the following syntax:

```
/a...

8ad54f1be53b30fdb24b616be0c52fd66829f201 authored about 1 year ago by Dawid Danieluk <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

32299d5eb45e735f071d9509354a148f8d353adb authored about 1 year ago by ory-bot <[email protected]>
feat: allow additional id token audiences (#3616)

0fa648d9f7b837a35de9b230a05b5951e95d5874 authored about 1 year ago by Jonas Hungershausen <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

4364ba0d39b8aaa5b9051117694ba628784b38dd authored about 1 year ago by ory-bot <[email protected]>
chore: improve tracing on recovery and verification (#3586)

b2b231ee58978c020e9123f194af67713e1f98a8 authored about 1 year ago by Jonas Hungershausen <[email protected]>
chore: add missing tracing in manager_cookie.go (#3615)

f7c6767dee8158b32ec88650906977288c05ee91 authored about 1 year ago by Jonas Hungershausen <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

2474864f4a64fe97925debb218e12a53b48199a7 authored about 1 year ago by ory-bot <[email protected]>
fix: omit irrelevant OIDC providers in forced refresh login flows (#3608)

Whenever an user is asked to reauthenticate (e.g. because they wish to execute settings flow tou...

912dccdf04a550604c5bfeb53ccf79c5f1133ef2 authored about 1 year ago by Krzysztof Bogacki <[email protected]>
chore: fix github.com/bxcodec/faker/v3 is deprecated (#3607)

843a2150c5ae422d687290284f8767bb9824f1d5 authored about 1 year ago by Anh Nguyen <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

139a11c99e3a78b6e01f7cf4fdaf560554356656 authored about 1 year ago by ory-bot <[email protected]>
Revert "fix: re-add exported symbols (#3611)"

This reverts commit 52639e695e307a7799158b7b79b011af3bfd1ac7.

8cc83bc75bf43ce629f6fe15ddf70745fc419058 authored about 1 year ago by Henning Perl <[email protected]>
Revert "chore: simplify courier code (#3603)"

This reverts commit 316cd4aacfe31efafa7d737a7c476e2c794e9c9b.

7c54c9f36c86142c8e071a5359c71cf6213a1a69 authored about 1 year ago by Henning Perl <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

8150bdb04a1202fdab8db47a98f8803d7480c613 authored about 1 year ago by ory-bot <[email protected]>
fix: re-add exported symbols (#3611)

52639e695e307a7799158b7b79b011af3bfd1ac7 authored about 1 year ago by Henning Perl <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

58bd38fc4bf9736c3bfecc2adb6f55f998870f16 authored about 1 year ago by ory-bot <[email protected]>
feat: link oidc credentials when login (#3563)

When user tries to login with OIDC for the first time but has already registered before with ema...

b784949d03b849d9d1d594977f75f5843b7b5da8 authored about 1 year ago by Henning Perl <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

3b75f3700ec21e3d39751f069a593e5c9235a6bc authored about 1 year ago by ory-bot <[email protected]>
chore: simplify courier code (#3603)

316cd4aacfe31efafa7d737a7c476e2c794e9c9b authored about 1 year ago by Patrik <[email protected]>
chore: fix email address in courier log line (#3585)

a639e562f216a43038625b7fa6a75165dc66ba61 authored about 1 year ago by Jonas Hungershausen <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

dffcdef6933b94e3c2f442a71dcd50ffc705e9db authored about 1 year ago by ory-bot <[email protected]>
feat: parametrize courier worker (#3601)

Allows one to parametrize how many messages the courier will fetch and how often it will fetch m...

0e4be57e41e1152f4be22f490541c2c099cfe3fe authored about 1 year ago by hackerman <[email protected]>
fix: respect gomail.SendError in mail queue (#3600)

9c608b991874d839782d9219f2fc27d0d4a398af authored about 1 year ago by hackerman <[email protected]>
fix: registration should accept hydra login (#3592)

* fix: registration should accept hydra login

* fix: oauth2 registration flow with session

...

7a47827cfd58ef68ebfbbeaf5ed86c394ba2bd5e authored about 1 year ago by Alano Terblanche <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

985474c600a202f73763292fbb816950c1687afd authored about 1 year ago by ory-bot <[email protected]>
fix: return HTTP 400 if key unmarshal fails (#3594)

* fix: return HTTP 400 if key unmarshal fails

* fix: apply reviewer's suggestion, prepare for...

fdf4956d9218cfa1d2227c4880e48f9bbdaeb95d authored about 1 year ago by Ferdynand Naczynski <[email protected]>
fix: consider OIDC registration flows errored with duplicate credential to be completed by strategy (#3525)

Returning anything else here may cause Kratos to respond with two concatenated JSON objects: new...

3e3c78967523676cbce9a227d574c2f7f4ea314d authored about 1 year ago by Krzysztof Bogacki <[email protected]>
fix: change shebangs and makefile from /bin/bash to /usr/bin/env bash (#3597)

* makefile fix

Signed-off-by: nxy7 <[email protected]>

* shebangs changed to /usr/bin/env ...

1343bbbfa11ff3e7fcbc0f233b858d13fd40c66d authored about 1 year ago by Dawid Danieluk <[email protected]>
fix: on verification required after registration, preserve return_to (#3589)

* fix: on verification required after registration, preserve return_to

* test: return_to on v...

6a0a9149b9828ba994bec9b48a43f9d70245f43f authored about 1 year ago by Alano Terblanche <[email protected]>
feat: webhook analytic events

9c8a25eb0d3e06df182565d3d959d57e5dccfed8 authored about 1 year ago by Arne Luenser <[email protected]>
fix: specify correct minimum versions in migratest

18b89ea588d129fa88379f7b0d7f4fd00ec6023d authored about 1 year ago by Arne Luenser <[email protected]>
chore: bump to Go 1.21

31faa2b6cbdeb3008d0c0c9a1e7a8691fe06437c authored about 1 year ago by Arne Luenser <[email protected]>
feat: add WebhookSucceeded event

aa8c93677a8f682f7693afe69f1baf1887355e0a authored about 1 year ago by Arne Luenser <[email protected]>
chore: move test helpers from package x to package testhelpers

e1fb8bfe06f59e212c4780b702d8e90a39355134 authored about 1 year ago by Arne Luenser <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

afed81d6e75f3d5c7060d0938bff9eb528b11215 authored about 1 year ago by ory-bot <[email protected]>
fix: add max-age to default cors headers (#3584)

c5b4aaa2df5d010b62a99ccf45850583daad3a66 authored about 1 year ago by hackerman <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

7b633794af5c2dbffcbe118fbde91a4fe32af507 authored about 1 year ago by ory-bot <[email protected]>
fix: auto migrate old accounts to use code credential (#3581)

569b14aba864761236bd3d5a48e4e69f10ea6c86 authored about 1 year ago by Alano Terblanche <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

4b7fd0d688ca00307ffa296be940293cc20ea558 authored about 1 year ago by ory-bot <[email protected]>
feat: login with code on any credential type (#3549)

Should be able to login with the `code` credential even if the user did not register on the `cod...

ceed7d5478c5cca894587698c57f676dda100b27 authored about 1 year ago by Alano Terblanche <[email protected]>
fix: respond with 422 when SPA identity requires AAL2 (#3572)

If you submit a browser login flow with an `Accept` header of `application/json`, but the login ...

df18c09e0089743e8aee17540d277b9572252e06 authored about 1 year ago by BrandonNoad <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

4f8ea02ce45590208b9d9cab5137f127a5010660 authored about 1 year ago by ory-bot <[email protected]>
fix: tracing improvements

c804cb2bebbefc97073cf3b8fa250c3eefc58894 authored about 1 year ago by Arne Luenser <[email protected]>
fix: always return relative URLs in the Link header for pagination

fb229c982c6f7d7a4f5f0f84ffc971a576906160 authored about 1 year ago by Arne Luenser <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

048af1d0e98bc0cb0c613ca9309b97d56a63e404 authored about 1 year ago by ory-bot <[email protected]>
chore(deps): bump golang.org/x/net from 0.14.0 to 0.17.0 (#3573)

Bumps [golang.org/x/net](https://github.com/golang/net) from 0.14.0 to 0.17.0.
- [Commits](http...

525554d30a9a0aceb1ff811a5cdb1116badf566d authored about 1 year ago by dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
autogen(docs): regenerate and update changelog

[skip ci]

566d1ca0edb1f1f77a3a2bc93c18c227734043b7 authored about 1 year ago by ory-bot <[email protected]>
feat: eventually consistency API controls (#3558)

Adds a feature used in Ory Network which enables trading faster reads for slightly stale data.
...

00cf11c071344103c603c078f07196401d091780 authored about 1 year ago by hackerman <[email protected]>
feat: allow importing hmac hashed passwords (#3544)

The basic format is `$hmac-<hashfunction>$<base64 encoded hash>$<base64 encoded key>`:

```
#...

0a0e1f7200e226ef24de062811a05bcdd02b6acd authored about 1 year ago by Tristan Kenney <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

13de64dafc882c4acf7cec9300af0f3e233b0167 authored about 1 year ago by ory-bot <[email protected]>
fix: `oidc` does not require a method in the payload (#3564)

* fix: `oidc` does not require a method in the payload

* refactor: only update strategies ord...

b299abcfa1ebdb8bbb6bb9339f61873d5c77c44f authored about 1 year ago by Alano Terblanche <[email protected]>
fix: lower-case recovery & verification emails on import (#3571)

Emails that contained upper-case characters would be overwritten by the identity schema extensio...

e2ac9ff4e2101788f1fca1b8c83f8791cce446e2 authored about 1 year ago by Patrik <[email protected]>
fix: increase connection-level timeouts and shutdown timeouts (#3570)

The admin API is generally expected to require longer timeouts, for example during bulk identity...

200b4138a429d113ee045d16031bb0a6312c1c01 authored about 1 year ago by Arne Luenser <[email protected]>
fix: allow updating admin metadata from webhook responses (#3569)

22f61f015495c55e58db4f31ee6882444b9a3caf authored about 1 year ago by Arne Luenser <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

4be5205320eb23c8ee465c1c361fc99fda4a2d9b authored about 1 year ago by ory-bot <[email protected]>
fix: change ListIdentities to keyset pagination

e16fed1f8563509aac30886386668bb85e6dc797 authored about 1 year ago by Arne Luenser <[email protected]>
fix: data race in test

ab6dc3121535d27668fed58804a218b17b17ae43 authored about 1 year ago by Arne Luenser <[email protected]>
fix: adjust tracing verbosity

976cd0dc3dd95c2c1992bfa82394e9fad39f34f2 authored about 1 year ago by Arne Luenser <[email protected]>
chore: add more tracing to post-flow hooks (#3566)

e8b92c18bd6a801a8f0ab0d42159a5535eceb953 authored about 1 year ago by Patrik <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

5fc88baefcce476069138ed4e9c57b540be5f024 authored about 1 year ago by ory-bot <[email protected]>
test: reduce logging in go tests (#3562)

05de3a29fed020593c44ea7a7b29e45197fef4f7 authored about 1 year ago by Jonas Hungershausen <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

e9ed14fdbcc7bbe658471adfdf1693e8a16f60c7 authored about 1 year ago by ory-bot <[email protected]>
fix: ui node input attributes key added (#3561)

* fix: ui node InputAttributes.Key added

* fix: selfservice recovery flow add React unique ke...

9eff0f3a611f32af7aa7f27587b3d3f4448ce915 authored about 1 year ago by Henning Perl <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

043114bb7740c3aa1f4ccb9143d58f7137ef186f authored about 1 year ago by ory-bot <[email protected]>
fix: remove slow queries from update identities (#3553)

d138abb6278ebb232e120bee0fb956a0f2816b8d authored about 1 year ago by hackerman <[email protected]>
fix: using first name as last name (#3556)

df80377f5fe6180fba5904baa5be1ba1d68eb2aa authored about 1 year ago by hackerman <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

8a0e4969a0af41d14692621923307a5f38382270 authored about 1 year ago by ory-bot <[email protected]>
fix: add value code to authentication method enum (#3546)

* fix: add value code to authentication method enum

* chore: generate sdk

---------

Co-...

95dc7a20f49aa682f324b70e507ec56c20159ebb authored about 1 year ago by Christian <[email protected]>
fix: use org ID from session if available in login flow (#3545)

1b3647c2acdad966f920c2b9e6e657c52aa50c6e authored about 1 year ago by Jonas Hungershausen <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

33fc9306a2c98f65db99500369fb4c9e3d45016c authored about 1 year ago by ory-bot <[email protected]>
feat: one-time code native flows (#3516)

9b0fee30f980d860fd548e7589fa6a06e593537a authored about 1 year ago by Alano Terblanche <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

046aa9bd27726f2ba453ad8c6d063294f94f92a8 authored about 1 year ago by ory-bot <[email protected]>
autogen(openapi): regenerate swagger spec and internal client

[skip ci]

28826f5df159f64412554da3dbb2612415f1293e authored about 1 year ago by ory-bot <[email protected]>
feat: allow fuzzy-search on credential identifiers (#3526)

This PR adds the ability to search for sub-strings and similar strings in credential identifiers...

2cb3ea2eaff909ac936611d5653f69e713f41b64 authored about 1 year ago by Patrik <[email protected]>
docs: add example for `allowed_return_urls` to include wildcard url (#3533)

See #1528

39b0c3c03df0aec254b32c840730452d4856872b authored about 1 year ago by Martin Jensen <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

6b91dc14c1adae0425e9ee46a3df30eba64321fc authored about 1 year ago by ory-bot <[email protected]>
fix: do not initialize parts of the registry in parallel (#3534)

ff177db8a97f27abc3e883e79832685348602334 authored about 1 year ago by Patrik <[email protected]>
autogen(docs): regenerate and update changelog

[skip ci]

461ad5297311dc650546239fc1d20a80e05f249b authored about 1 year ago by ory-bot <[email protected]>
chore: ignore CVE-2023-4806 (#3532)

7ae1271a1db08ad98de9f039ccbfc8494eb2a678 authored about 1 year ago by Jonas Hungershausen <[email protected]>
test: resolve cypress issues (#3531)

4206d2605dfa30b19e132be31b85b1a35f8dca78 authored about 1 year ago by Jonas Hungershausen <[email protected]>
fix: schema test errors (#3528)

bee0341c5bf5708a2210146fc59f050a1b9df663 authored about 1 year ago by Patrik <[email protected]>
test: fix cypress setup (#3527)

70c8ddd49c8abb9c10f2ca349e01061b791c5e7b authored about 1 year ago by Patrik <[email protected]>